GitHub topics: crowdstrike
CrowdStrike/ansible_collection_falcon
Comprehensive toolkit for streamlining your interactions with the CrowdStrike Falcon platform.
Language: Python - Size: 10.4 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 108 - Forks: 64

CrowdStrike/psfalcon
PowerShell for CrowdStrike's OAuth2 APIs
Language: PowerShell - Size: 3.74 MB - Last synced at: 4 days ago - Pushed at: 10 days ago - Stars: 429 - Forks: 75

CrowdStrike/falconpy
The CrowdStrike Falcon SDK for Python
Language: Python - Size: 61.6 MB - Last synced at: 2 days ago - Pushed at: 24 days ago - Stars: 426 - Forks: 137

ByteRay-Labs/CVE-RAY
CVE-RAY for CrowdStrike Falcon Spotlight: An open-source Chrome extension that reads CVE-IDs from news articles, social media, and blogs while you browse and instantly checks your Falcon environment to show if your organization is affected - right in the browser.
Language: JavaScript - Size: 147 KB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 6 - Forks: 0

MrM8BRH/Falcon-NextGen-SIEM
Falcon-NextGen-SIEM is a curated collection of resources, tools, and documentation for CrowdStrike Falcon® Next-Gen SIEM. This repository provides deployment guides, detection rules, dashboards, and integration templates to streamline threat detection, log analysis, and security operations.
Size: 28.4 MB - Last synced at: 10 days ago - Pushed at: 11 days ago - Stars: 1 - Forks: 0

CrowdStrike/falcon-mcp
Connect AI agents to CrowdStrike Falcon for automated security analysis and threat hunting
Language: Python - Size: 810 KB - Last synced at: 12 days ago - Pushed at: 12 days ago - Stars: 42 - Forks: 10

Aamir-Muhammad/CrowdStrike-Queries
CrowdStrike Falcon Advanced Threat Hunting Queries
Size: 63.5 KB - Last synced at: 25 days ago - Pushed at: 25 days ago - Stars: 2 - Forks: 0

securityjoes/Crowdstrike-Deploy
The ultimate repository for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.
Language: Shell - Size: 198 KB - Last synced at: 25 days ago - Pushed at: 25 days ago - Stars: 24 - Forks: 0

CrowdStrike/caracara
Developer enhancements (DX) for FalconPy, the CrowdStrike Python SDK
Language: Python - Size: 1010 KB - Last synced at: 10 days ago - Pushed at: about 1 month ago - Stars: 40 - Forks: 13

turbot/steampipe-plugin-crowdstrike
Use SQL to instantly query CrowdStrike resources. Open source CLI. No DB required.
Language: Go - Size: 385 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 7 - Forks: 2

tquin/vscode-logscale-syntax
A VS Code extension for for LogScale Query Language (formerly Humio) syntax highlighting.
Language: JavaScript - Size: 509 KB - Last synced at: 5 days ago - Pushed at: 28 days ago - Stars: 5 - Forks: 1

CrowdStrike/cloud-resource-estimator
Cloud deployment size calculation utilities
Language: Python - Size: 159 KB - Last synced at: 22 days ago - Pushed at: 22 days ago - Stars: 22 - Forks: 21

1B05H1N/crowdstrike-ngsiem-correlation-rules-backup
Backup tool for CrowdStrike NGSIEM correlation rules, ensuring cross-platform compatibility and easy management of backups.
Language: Python - Size: 18.6 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 0 - Forks: 0

hazcod/security-slacker
Pokes users about outstanding security risks found by Crowdstrike Spotlight or vmware Workspace ONE so they secure their own endpoint.
Language: Go - Size: 11.1 MB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 28 - Forks: 5

wehr-to/crowdstrike-ops-toolkit
Operational playbooks, deployment guides, and automation tooling for CrowdStrike Falcon — covering agent installation, CLI queries, detection response workflows, and multi-platform management.
Language: Shell - Size: 28.3 KB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 1 - Forks: 0

psmiraglia/python-crowdstrike-utils
Collection of Python scripts to interact with the CrowdStrike API
Language: Python - Size: 15.6 KB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

securityjoes/ForensicMiner
A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.
Language: PowerShell - Size: 4.89 MB - Last synced at: 4 months ago - Pushed at: 5 months ago - Stars: 156 - Forks: 19

AutomateSecOps/EDgaR-Utility
Asset Discovery, EDR Audits and Tagging for CrowdStrike Endpoints
Size: 1.79 MB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 0 - Forks: 0

CrowdStrike/MISP-tools
Import CrowdStrike Threat Intelligence into your instance of MISP
Language: Python - Size: 7.34 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 46 - Forks: 13

cs-shadowbq/CQL-Queries
Best Practices, queries, and packages for CQL the language of CrowdStrike's LogScale (Humio) log manager.
Language: Python - Size: 81.1 KB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 1 - Forks: 0

feb-ri/crowdstrike-falcon-queries
A compilation of queries I use for hunting on the CrowdStrike Falcon platform.
Size: 0 Bytes - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 0 - Forks: 0

rp377/Crowdstrike-Falcon-Integration-with-MAC-Workstations-using-Intune
This guide helps you with necessary information for onboarding MAC workstations on CrowdStrike Falcon using Microsoft Intune
Size: 15.6 KB - Last synced at: about 1 month ago - Pushed at: 6 months ago - Stars: 0 - Forks: 0

ClaireYurev/crowdstrike-outage-fix
Remediation for the BSOD on Windows systems caused by Crowdstrike's channel file update
Language: Batchfile - Size: 6.84 KB - Last synced at: 7 days ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

tr3kl0v/stop-sauron
To stop the all seeing eye of Sauron and make your MacBook operate as it should be.
Language: Shell - Size: 86.9 KB - Last synced at: 8 months ago - Pushed at: 8 months ago - Stars: 23 - Forks: 3

zayeemZaki/FullStackCrowdStrikeAutomation
CrowdStrike Automation
Language: HTML - Size: 4.28 MB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 0 - Forks: 0

rainxh11/CrowdStrikeRemover
CrowdStrike Problematic Windows Driver files Auto Removal Tool
Language: C# - Size: 24.4 KB - Last synced at: 3 months ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 1

AutomateSecOps/Tines-Pagination
Working with Pagination in Tines
Size: 186 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 0 - Forks: 0

AutomateSecOps/Tines-AI-Winner
My six month journey with Tines SOAR platform.
Size: 226 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 0 - Forks: 0

sween/tetragon-crwd-logscale
A Daemonset to send Tetragon Events to Crowdstrike Falcon LogScale NG-SIEM
Language: Python - Size: 4.37 MB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 0 - Forks: 0

TomRyan-321/crowdstrike-ecs-fargate-pipepline-demo
Sample pipeline demo highlighting how to integrate Falcon Container Sensor into ECS Fargate Workloads
Language: Python - Size: 38.1 KB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 8 - Forks: 13

m-mizutani/falconstream
Event forwarder for CrowdStrike Falcon
Language: Go - Size: 29.3 KB - Last synced at: 5 days ago - Pushed at: over 1 year ago - Stars: 11 - Forks: 3

QbDVision-Inc/Falcon-Auto-IoC
Automatically retrieve latest IoC from [bazaar, threatfox].abuse.ch and get them into your Falcon instance
Language: Python - Size: 17.6 KB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 0 - Forks: 0

Coralesoft/taxii-to-crowdstrike-ioc-ingestion
A script that automates the process of polling IOCs from a STIX/TAXII server and ingesting them into CrowdStrike Falcon using the Falcon Intelligence API. It supports transforming domain names, IP addresses, and file hashes from STIX format into CrowdStrike-compatible IOCs for threat detection and response.
Language: Python - Size: 66.4 KB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 1 - Forks: 0

ag-michael/pyfalcon
Crowdstrike Falcon streaming api client in python
Language: Python - Size: 11.7 KB - Last synced at: 5 months ago - Pushed at: over 6 years ago - Stars: 9 - Forks: 3

khafirovisk/kill-falcon
Este script foi criado para automatizar tarefas administrativas no Windows, como consultas a registros, interações com APIs para obtenção de tokens de autenticação e remoção da ferramenta.
Language: PowerShell - Size: 105 KB - Last synced at: about 2 months ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

brokensound77/toruk
Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data
Language: Python - Size: 103 KB - Last synced at: about 2 months ago - Pushed at: about 6 years ago - Stars: 13 - Forks: 4

miguelgargallo/CrowdStrike-rollback
CrowdStrike-rollback.ps1 is a PowerShell script designed to automate the removal of a specific file related to CrowdStrike that may be causing issues on your Windows system. This script should be executed in Safe Mode or the Windows Recovery Environment.
Language: PowerShell - Size: 412 KB - Last synced at: 6 days ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 0

Alex-Walston/Detection-Rules
Collection of detection / hunting rules. (Google Chronicle, YARA-L rules) (Utilizing mainly CrowdStrike // Sysmon logs)
Size: 27.3 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

sigreer/bsod
Blue Screen of Directus
Language: Astro - Size: 1.99 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

hirusha-adi/crowdstrike-fix
Fix the CrowdStrike issue that arose in 7/19/24 easily and as fast as possible.
Language: PowerShell - Size: 428 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 3 - Forks: 0

GavinPickles/CrowdStrike
CrowdStrike BSOD WinPE iso to resolve issue.
Size: 4.88 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

GorvGoyl/howtofixcrowdstrikeissue.com
How to Fix CrowdStrike Issue?
Language: TypeScript - Size: 183 KB - Last synced at: 8 days ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 1

songsuho/240719_Crowdstrike_BSOD
240719 Crowdstrike BSOD Resolution notes
Language: Batchfile - Size: 3.91 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

kinneygroup/itsi-crowdstrike-falcon
Atlas ITSI Content Pack for Crowdstrike Falcon
Size: 89.8 KB - Last synced at: 4 months ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

wdotcx/CrowdStrike
CrowdStrike Firewall API Toolkit
Language: Python - Size: 46.9 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

xfox64x/VBShell
Mousejack attack and reverse VBS C2 script
Language: Python - Size: 182 KB - Last synced at: over 1 year ago - Pushed at: almost 6 years ago - Stars: 4 - Forks: 2

splunk/SA-CrowdstrikeDevices
Allows Crowdstrike device information to be used with Splunk Enterprise Security.
Size: 1.33 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 3 - Forks: 0

AnushanLingam/PiHole-LogscaleShipper
A collection of scripts and parsers to extract DNS query logs from a Pihole instance and ingest them into the Falcon Logscale (Humio) platform.
Language: Python - Size: 15.6 KB - Last synced at: about 2 months ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

Silv3rHorn/BulkStrike 📦
BulkStrike enables the usage of CrowdStrike Real Time Response (RTR) to bulk execute commands on multiple machines.
Language: Python - Size: 868 KB - Last synced at: over 1 year ago - Pushed at: almost 3 years ago - Stars: 42 - Forks: 10

happyvives/Windows-IR
Windows PowerShell scripts to assist in Incident response log collection automation for Windows and Crowdstrike RTR
Language: PowerShell - Size: 16.6 KB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

r-dube/solarwinds
Tracking the Solarwinds Hack.
Size: 160 KB - Last synced at: almost 2 years ago - Pushed at: over 4 years ago - Stars: 3 - Forks: 1

cs-shadowbq/CRWD-HBFW
CrowdStrike Powershell module for parsing WFP for Falcon Host Based Firewall
Language: PowerShell - Size: 60.5 KB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 3 - Forks: 0

pe3zx/crowdstrike-falcon-queries
A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon
Size: 5.86 KB - Last synced at: almost 2 years ago - Pushed at: over 5 years ago - Stars: 154 - Forks: 46

MaximeWewer/Falcon_bulk_actions
Execute bulk actions on your hosts using falconpy SDK of Crowdstrike (RTR/RTRA).
Language: Python - Size: 33.2 KB - Last synced at: 7 months ago - Pushed at: about 2 years ago - Stars: 1 - Forks: 0

NSH531/gammau-crwd
Language: Python - Size: 10.7 MB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

cs-shadowbq/blueteam-ioa-rules
CrowdStrike Falcon Custom IOA rules and Examples
Language: Python - Size: 271 KB - Last synced at: 10 months ago - Pushed at: over 1 year ago - Stars: 2 - Forks: 0

TPower2112/add-tag-host-falcon
How to add a Falcon Grouping tag to a Single Host
Language: Python - Size: 3.91 KB - Last synced at: almost 2 years ago - Pushed at: almost 3 years ago - Stars: 1 - Forks: 0

bgraabek/LogScale-Package-for-Nextcloud
A Falcon LogScale package for monitoring and visualising data about a Nextcloud server
Language: Shell - Size: 1.25 MB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

bgraabek/Pushover-LogScale-alert-action
Falcon LogScale Alert action for Pushover (https://pushover.net)
Size: 10.7 KB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

thetanz/csfalcon
crowdstrike tips & tricks 🦅 😶🌫️
Language: HTML - Size: 139 KB - Last synced at: over 2 years ago - Pushed at: over 3 years ago - Stars: 30 - Forks: 6

Ernesto-Tello/CrowdStrike-Device-Query
CrowdStrike API C# - Authenticate, Query Devices and Revoke Token
Size: 1.95 KB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

rndmIdi0cy/Menagerie
Crowdstrike response script containing various functions for IR/triage
Language: PowerShell - Size: 20.5 KB - Last synced at: over 2 years ago - Pushed at: over 4 years ago - Stars: 8 - Forks: 1

tyler-tee/CrowdClient
CrowdClient is a Python library for interacting with CrowdStrike Falcon's REST API.
Language: Python - Size: 110 KB - Last synced at: 18 days ago - Pushed at: about 2 months ago - Stars: 6 - Forks: 3

Trifork-Security/humio-fdr-utils
Package to help around crowdstrike/fdr data
Size: 44.9 KB - Last synced at: over 2 years ago - Pushed at: about 3 years ago - Stars: 3 - Forks: 2

Trifork-Security/cses2humio
CrowdStrike Falcon Event Stream to Humio
Language: Python - Size: 161 KB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 6 - Forks: 0

filipi86/CrowdStrike
The purpose of this document, it was to execute several efficiency and detection tests in our lab environment protected with an endpoint solution, provided by CrowdStrike, this document brings the result of the defensive security analysis with an offensive mindset using reverse shell techniques to gain the access inside the victim's machine and after that performing a Malware in VBS to infected the victim machine through use some scripts in PowerShell to call this malware, in our environment.
Size: 22.8 MB - Last synced at: over 2 years ago - Pushed at: over 4 years ago - Stars: 4 - Forks: 1

104ru/crowdstrike
Puppet module to deploy and manage CrowdStrike agent
Language: Ruby - Size: 41 KB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 11

pyperanger/crowdstrike-client
CrowdStrike API Client Library
Language: Python - Size: 22.5 KB - Last synced at: 15 days ago - Pushed at: over 3 years ago - Stars: 0 - Forks: 0

wallacepalace/crowdstrike-api
CrowdStrike API Integrations: https://www.crowdstrike.com/blog/tech-center/api-integrations/
Language: PowerShell - Size: 11.7 KB - Last synced at: over 2 years ago - Pushed at: almost 4 years ago - Stars: 0 - Forks: 0

ag-michael/thehive-falcon
Falcon streaming api alert integration for TheHive
Language: Python - Size: 20.5 KB - Last synced at: 5 months ago - Pushed at: almost 5 years ago - Stars: 2 - Forks: 2

Bernardi-Luca/crowdstrikeFalconAlarm
Language: Python - Size: 2.93 KB - Last synced at: over 2 years ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 1
